Exposing GCHQ’s Top Secret “GORDIAN KNOT” Cyber Defense Sensor Program — An Analysis

Dancho Danchev
9 min readOct 28, 2019
Sample Publicly Obtainable Top Secret “GORDIAN KNOT” Presentation Slide

In a previous post on Medium entitled “Assessment of U.S Intelligence Community Cyber Surveillance Programs and Tradecraft — Part One” I offered practical security tips and actual advice for the purpose of setting up the foundations for an upcoming set of posts detailing some of the most prolific U.S Intelligence Community Cyber Surveillance Programs and how you can protect yourself from wide-spread surveillance and eavesdropping attempts including practical advice on how the U.S Intelligence Community can actually make them work better.

In this post I’ll discuss in-depth GCHQ’s “GORDIAN KNOT” Top Secret Sensor for Cyber Defense Program which largely relies on Information Assurance Sensor development network including the “HARUSPEX” Top Secret Program which collects malicious software based on specific signatures targeting U.K-based infrastructure in the context of malicious software and phishing including spam campaigns with the help of data and E-mail attack signatures produced to be utilized by MessageLabs E-mail monitoring infrastructure acting as a Sensor Network successfully protecting U.K based Email infrastructure including several other currently active Top Secret U.S Intelligence Community Programs actively collecting malicious software and collerating data using SIGINT for possible malicious…

--

--

Dancho Danchev

Cybercrime Researcher OSINT Analyst Security Blogger Threat Intelligence Analyst DNS Threat Researcher WhoisXML API — https://ddanchev.blogspot.com